All Apps and Add-ons

SNMP event

punithjigali
Explorer

How to configure Univesal fowarder to send snmp traps in unix server and how to collect?
whats the use of snmp modular input and where to install it? on the fowarder side or splunk instance?
can we use syslog for snmp traps??

0 Karma

PavelP
Motivator

Hello @punithjigali ,

to send snmp traps from a linux host:

  • install and configure snmp to send traps independently from splunk
  • configure script input to run snmptrap command periodically

how to collect SNMP described here: https://docs.splunk.com/Documentation/Splunk/8.0.3/Data/SendSNMPeventstoSplunk

whats the use of snmp modular input and where to install it? on the fowarder side or splunk instance? - it depends on where you want to capture SNMP input - on Indexer or on HF, on UF too, but you have to configure it manually, because UF has no UI.

can we use syslog for snmp traps - yes, snmp deamon can collect traps and write them to log, and syslog can read this log and send events to Splunk. Alternatevely UF can read the log and send events to Splunk.

There are many options, choose what suits you best.

Let me know if it helps

0 Karma
Get Updates on the Splunk Community!

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...